Bug Bounty Program

Overview

Enjoy vulnerability fishing, Get recognition for your catches, and DONATE to good causes! Found a security vulnerability related to Fishbrain? Please let us know.

We'll investigate your report quickly and get back to you. We donate to a non-profit organization in the name of each person who reports a valid vulnerability. And you'll get some Fishbrain goodies and have your name on our hall of fame!

Scope

All vulnerabilities categorized by Bugcrowd as P1 or P2 (other vulnerabilities cannot expect a response)

Out of Scope

Enumeration Bugs (unless they contain critical data)

Medium TLS-related issues

Policy

You should not perform

You should

We should

Did you catch a vulnerability? Please make sure you follow the following steps

Award

As soon as we verify the vulnerability you reported, we'll make a donation to non-profit organizations in your name to help to make our planet a better place for both Anglers and Hackers. We'll also send you some of our branded goodies as a simple gratitude gift.